Oct 10 · 2 min read
Hey Everyone ! Surendra Here ! Back With another Blog
This blog is a Part of “hacking source — all in one” YouTube series . If you don’t see this series videos then i highly recommend to watch it before get into blog.
Series link — https://www.youtube.com/watch?v=gBWLiZJE4R0&list=PLyiK4gDRfIyDjB050nhbTXN9gKJszTxuJ
In Last Blog we Talk about All Resource About XSS.
Last Blog link — https://infosecwriteups.com/xss-all-resources-in-one-blog-cce53c79f6bb?source=user_profile---------0----------------------------
So Today’s topic is SQL injection . We will see all the resource which is free available on internet and learn how to learn them in a butter sequence .
That’s Why we follow a structure , which is given below -
1.Basic Need to learn SQL injection .
2.Learn what is SQL Injection and how it’s work , type of SQL injection , SQL injection payload etc..
3.Hands on SQL Injection using lab .
4.Read real world found SQL Injection bug bounty reports .
5.Bonus
Let’s get start -
1.Basic Need to SQL Injection — To learn SQL injection First You Need To Learn Basic OF PHP & SQL Language . I promise it’s help you a lot |
Resource — {HINDI} -https://www.youtube.com/watch?v=T8SEGXzdbYg&t=1561s
{HINDI} -https://www.youtube.com/watch?v=1SnPKhCdlsU
{ENGLISH} -https://www.youtube.com/watch?v=HXV3zeQKqGY
{ENGLISH} -https://www.youtube.com/watch?v=BPHAr4QGGVE&t=2088s
2.Learn what is SQL Injection and how it’s work , type of SQL injection , SQL injection payload etc.. — As Usually We start Learning from videos because it’s easy to understand from videos.
Resource — {HINDI} — https://www.youtube.com/watch?v=swuxmzXJjBc (what is SQL Injection)
{HINDI} -https://www.youtube.com/watch?v=O1UTuWkTaks (What is Blind SQL injection)
{ENGLISH} — https://www.youtube.com/watch?v=3Axp3VDnf0I
{ENGLISH} — https://www.youtube.com/watch?v=suPoPdmfsaw
3.Hands on SQL Injection using lab — Lab is important to check your skills .
Resource — 1.https://tryhackme.com/room/sqlilab
2.https://portswigger.net/web-security/sql-injection
3.DVWA In local-host
4.Read real world found SQL Injection bug bounty reports .
1.https://medium.com/sud0root/bug-bounty-writeups-exploiting-sql-injection-vulnerability-20b019553716
2.https://infosecwriteups.com/shared-license-or-crack-access-to-1000-servers-2c4d97b9b22b
3.https://infosecwriteups.com/first-bug-bounty-ever-sql-injection-da4e64e30851
4.https://pentester.land/list-of-bug-bounty-writeups.html {here you find a lot of reports but you can filter by search for SQL injection}
5.Bonus -
1.All SQL payload In one Place — https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/SQL%20Injection
Okay after doing of these step now you are ready to find SQL injection ! go and hunt on real world website , Best of luck ✌ !
You can subscribe my YouTube channel for future hacking related videos and updates !!
Channel link — https://www.youtube.com/c/TechnicalSurendrachannel
Thanks for reading this blog , If you find it valuable then give a applaud 👏👏 ,
Follow me & Share this blog to your friends and other community . i will see you in next blog . Till then keep learning keep exploring !
Peace ✌ !
My social medial accounts -
Tweeter — https://twitter.com/technicalSure
YouTube — https://www.youtube.com/channel/UCZq87M0I0-zEfLuyyfEeE6Q
Instagram — https://www.instagram.com/surendra_choudhary1241/
Linkedin — https://www.linkedin.com/in/surendra-pander-4066761b7/